PoC Index

CVE-2025-40019

MEDIUM 5.5EPSS 0.3%

In the Linux kernel, the following vulnerability has been resolved: crypto: essiv - Check ssize for decryption and in-place encryption Move the ssize check to the start in essiv_aead_crypt so that it's also checked for decryption and in-place encryption.

CVSS v3.1
5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
EPSS
0.27% chance of exploitation in the next 30 days, 19th percentile
Published
2025-10-24
Updated
2026-05-11

Proof-of-concept exploits (2)

References

Related